
Exploit for CVE-2022-23131 targeting Zabbix SAML SSO authentication bypass. Generates a signed session cookie to gain unauthorized admin access.
FOFA
app="ZABBIX-监控系统" && body="saml"
Run
python cve-2022-23131.py https://www.example.com Admin
Use the exp to generate signed_session, replace the cookie, then click Sign in with Single Sign-On (SAML) Default is Admin
(Act responsibly, you bear the consequences)
A chance encounter, a tribute to the ordinary who refuse to be mediocre.